URLhaus Database

You are currently viewing the URLhaus database entry for http://bjhfys.com/LGfWC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:22253
URL: http://bjhfys.com/LGfWC/
URL Status:Offline
Host: bjhfys.com
Date added:2018-06-21 16:49:07 UTC
Last online:2019-10-16 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-06-21 16:50:02 UTC to admin{at}xgdfw[dot]com)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-10-11n/aunknown 86d3cdb375c3d0eb235870e1b3b85114403681058cbe69f4e2fb7d5a6211f1a2n/a 
2018-06-2319485.exeexe d0ec4151428d80d588e491663058a833df4233b94bfed05c682db880ad995997Virustotal results 26.47% Heodo
2018-06-225874.exeexe 73b54245d935ab3ac10ef443a0c1f4addfab993a50ea8daabceb78a22d3d5776Virustotal results 14.71% 
2018-06-2296714.exeexe d70cd1760bff2d22fcfc266705d9d7047b6e462f170ea26ac1df887e43f5aa74Virustotal results 19.40% Heodo
2018-06-227626.exeexe c1a417d52709fb5f4edf17adff3008944682ce3d7aa6fc5c7eb69ee8802b874eVirustotal results 28.36% Heodo
2018-06-2209983.exeexe 3584d5b67ebaf6811dfa980ccc34727eb1f85ebb533c7008ca2866245b393305Virustotal results 16.67% Heodo
2018-06-226682.exeexe 8ae59b74f2fbaf64c3911018652c9dd5ccdf4d3d51c27b8489be15b2c78134efVirustotal results 20.59% Heodo
2018-06-2295496.exeexe 31ef1df22b0208fb3770fefb4e442972c7ed5b293a47f230da39319e0cc122f1Virustotal results 36.76% Heodo
2018-06-2264047.exeexe 7dea82604572705f4329aad4e519a7bfb87bd5175ad9fd8436628b5934e6a226n/a Heodo
2018-06-224894.exeexe 089cfc055904027a5b158e8a212991f8e626a72727f28c6d1bae6894d49a3783Virustotal results 27.27% Heodo
2018-06-226100.exeexe 30ea181a66bd17233fe6e858e0f0ac1bb559c7795620b511eded7a09f2250c6bn/a Heodo
2018-06-2153211.exeexe 287ec57a701c8c6e3a75c58caa0eacfa162d341311f36528728dcfb60233410aVirustotal results 19.70% 
2018-06-2159777.exeexe fd1ca40bf5a6bfc70be33cf593849c8ffa947614421e021aac603db4b0e80a35Virustotal results 20.90% Heodo
2018-06-2197636.exeexe 4ab90d7abe77fbe6d9ab9d99ad49cb01e3afdadaaf3d7a12ede4b2ee24db8141Virustotal results 20.59% Heodo
2018-06-2121032.exeexe 8b6c9f15b52b5d32575d503e74c9bf70fd734c8ed53a5b85114130a7a910edf3Virustotal results 33.82%